Skip to content

Forms Portal — Cross-Department Field-Exposure Matrix

Classification: CONFIDENTIAL — Internal Use Only
Document: governance/forms-field-exposure-matrix.md · v1.0 · GPUS-IT
GENERATED — do not hand-edit. Regenerate with python3 scripts/gen-field-exposure-matrix.py.

Each multi-queue form fans a submission out to several destinations, each rendering its own template (2.5(d) per-action model). The template is therefore the per-queue access boundary: a field a template renders is a field that queue's recipients see. This matrix documents, for every multi-template form, which sensitive fields each queue's template exposes — and flags any HR-scoped field reaching a non-HR queue (a cross-department leak).

Field classes: COMP (compensation), GRANT, BENEFIT, EMP-TERMS (union/FLSA/mgmt status), PROTECTED-CLASS (EEO), HR-ONLY. These must stay in HR-routed templates. COST and PERSONAL (home address / personal phone) are shown but operationally permitted to IT/Facilities (equipment, desk).

✅ No cross-department leaks

No COMP / GRANT / BENEFIT / EMP-TERMS / PROTECTED-CLASS / HR-ONLY field is rendered by any template routed to a non-HR queue.

Employee Termination Notification

employee-termination-notification.yaml

  • HR Termination Template (HR) → EM:gpus-people@greenpeace.org, HF:92
  • IT Termination Template (non-HR) → HF:81, HF:85, HF:96, EM:gpus-it-accounts@greenpeace.org, gpus-data-request@greenpeace.org
  • Facilities Termination Template (non-HR) → EM:gpus-facilities@greenpeace.org, gpus-finance-support@greenpeace.org, HF:100
sensitive field class HR Termination Template IT Termination Template Facilities Termination Template
CostCenter COST
TerminationCodes HR-ONLY · ·
PersonalEmail PERSONAL · ·

New Employee Notification

new-employee-notification.yaml

  • HR New Employee Template (HR) → EM:gpus-people@greenpeace.org, HF:92
  • IT New Employee Template (non-HR) → EM:gpus-it-accounts@greenpeace.org, HF:81
  • General New Employee Template (non-HR) → EM:gpus-it-accounts@greenpeace.org, gpus-facilities@greenpeace.org, HF:100, HF:96, HF:85
sensitive field class HR New Employee Template IT New Employee Template General New Employee Template
AdditionalPTO BENEFIT · ·
Insurance BENEFIT · ·
PaidPTO BENEFIT · ·
HourlyRate COMP · ·
PayrollCostCente COMP · ·
Payscale COMP · ·
Salary COMP · ·
SalaryBand COMP · ·
TimeApproval COMP · ·
ProjectCode COST · ·
BargainType EMP-TERMS · ·
ExemptType EMP-TERMS · ·
MgmtPosition EMP-TERMS · ·
GPFund GRANT · ·
GPInc GRANT · ·
NameOfTheGrant GRANT · ·
MailingAddress PERSONAL
PersonalNumber PERSONAL
EEO1 PROTECTED-CLASS · ·

Rate/Position Change Notification

rate-position-change-notification.yaml

  • IT Position Change Template (non-HR) → HF:81, HF:96, EM:gpus-it-accounts@greenpeace.org
  • HR Position Change Template (HR) → HF:92, EM:gpus-people@greenpeace.org
sensitive field class IT Position Change Template HR Position Change Template
NewHourlyRate COMP ·
NewSalary COMP ·
PayScale COMP ·
PayrollApproval COMP ·
SalaryBand COMP ·
CostCenter COST
ProjectCode COST ·
BargainType EMP-TERMS ·
ExemptStatus EMP-TERMS ·
Mgmtposition EMP-TERMS ·
GPFund GRANT ·
GPInc GRANT ·
EEO1 PROTECTED-CLASS ·